Loading
A vulnerability was found in TrueConf Server 4.3.7. It has been classified as problematic. Affected is an unknown function of the file /admin/group/list/. The manipulation of the argument checked_group_id leads to basic cross site scripting (Reflected). It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Use CWE-80, Trueconf vendor hub and Server product page to widen CVE-2017-20116 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2022-46764, CVE-2022-46763 and CVE-2025-66824 for nearby disclosures in the same product family.